CVE-2022-41223

Mitel MiVoice Connect Code Injection Vulnerability

The Director component in Mitel MiVoice Connect allows an authenticated attacker with internal network access to execute code within the context of the application. Vendor/Product: Mitel MiVoice Connect. Added to CISA KEV 2023-02-21; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited